Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.
About Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.

Discussions

Welcome to the Next-Generation Firewall Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 4508 Views
  • 0 replies
  • 1 Likes

Using NAT64 to reach overlapping ipv4 networks

Hello! My problem is a little more complex than the scenario below, but I'm trying to keep it simple. Let's say I have a machine "v6client" on an IPv6-only network with IP 2001:db8::10. It's directly connected to an interface in virtual router vr1. Then, let's say I have two servers "server1" and "server2". Both of them have the same IP 19...

Resolved! PA-440 logging tab emtpy

Hi there, just got my new HA pair of two PA-440's up and running. I noticed a strange thing, the logging tab is empty, what's the cause of this? Btw, the cli shows logs via "show log traffic direction equal backward dst in x.x.x.x" Thx Daniel

pa440-logging.png
Netzer by L3 Networker
  • 2707 Views
  • 5 replies
  • 0 Likes

Resolved! Bi-direction Nat logic

hi I have configured a static bidirection NAT which is Trust to Untrust source address 10.149.192.32 destination 10.90.129.51 service any source translation 200.22.1.32 and turned the bi-directional: yes. I have the security policy any and routing 10.149.0.0/16 and 200.22.0.0/16 is Trust,10.90.129.51 Untrust. I have done troubleshooting from Tru...

IAmJi1 by L3 Networker
  • 2315 Views
  • 5 replies
  • 0 Likes

issues with traffic passing through vWire

hi guys, i'm trying to set up a new Palo Alto firewall, a PA 440, for a customer. But they want minimal impact on their network and don't want to change anything, so i proposed setting up a vWire so they change nothing and can benefit from the inspection features of the new Palo box. pretty much here's how it kinda looks like: ISP Router --> ...

D.Sine by L1 Bithead
  • 1464 Views
  • 2 replies
  • 0 Likes

Failed to download due to Empty file returned by update server. Please try again later.

Failed to download due to Empty file returned by update server. Please try again later.HW : PA440sw 11.2.4-h1 seeig this error when trying to download 11.24h4 It worked on another firewall with same SW Tried with update server : updates.paloaltonetworks.com and us-static.updates.paloaltonetworks.com Nothing works, please help to fix the issue

GP VPN / Routing

Hi All, I have a question: So we have a Parent Company name A and we have an existing IP SEC S2S tunnel and we are forwarding the routes for Server and Voice. Now we have a new client on our Company, and that client consist of 3 users only. So, their work setup is hybrid. So our client users are located on Parent company site CH, JAPA...

weezy by L3 Networker
  • 605 Views
  • 0 replies
  • 0 Likes

Power Adapter and Cable for PA-460 Firewall

Hello, I would like to confirm the type of power adapter and cable used to power the PA-460 firewall. Specifically, I need to know the connector type on the AC side of the adapter and whether it uses an IEC-60320 C5 or a different standard. This information is crucial for connecting the device to a data center rack PDU with C13 outlets. Thank yo...

Errors and commit warnings after 11.1.2-h3 upgrade

Hi, If anyone could shed some light on the issue below, it would be greatly appreciated. Since upgrading my PA-440 to 11.1.2-h3 (preferred version), I am seeing the following two issues: 1. Every 5 minutes, there is a system log error:Failed to perform task resulting in connection timeout with WildFire Cloud wildfire.paloaltonetworks.com 2. Af...

GregorJus by L1 Bithead
  • 14430 Views
  • 10 replies
  • 4 Likes
  • 1794 Posts
  • 60 Subscriptions
Top Solution Authors